ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 121.4.99.65:6666.

Database Entry


IOC ID:1562592
IOC: 121.4.99.65:6666
IOC Type :ip:port
Threat Type :botnet_cc
Malware: ValleyRAT
Malware alias:Winos
Confidence Level : Confidence level is high (100%)
ASN:AS45090 TENCENT-NET-AP
Country:- CN
First seen:2025-07-30 19:00:24 UTC
Last seen:never
UUID:72d96271-6d77-11f0-851c-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RAT ValleyRAT

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2025-07-30 23:50:17 38613e06fc7b73228e94980356ae8ab6c293c234daf13f78fb547eeb15d44eca
2025-07-30 19:00:26 09e0cd563e4bad791a14f4bbf4a87326009e71488b5dfb2f8176e749f619d549